CVE-2025-40602
SonicWall SMA1000 Missing Authorization Vulnerability - Active in CISA KEV catalog.
Critical vulnerabilities, curated daily for security professionals
See how vulnerabilities affect your specific environment
CRS uses the System Security Context Vector (SSCV) Framework v1.0 to adjust CVSS scores based on your system's exposure level, network position, and business criticality. Learn more about SSCV Framework
This brief identifies 15 critical vulnerabilities (CVSS 9.0+), a substantial increase from yesterday's 4 critical CVEs. High-priority vulnerabilities rose to 36, an 89% increase from the previous day's 19. The 15 actively exploited vulnerabilities include CVE-2025-40602 affecting SonicWall SMA1000 appliances, CVE-2025-20393 in Cisco products, CVE-2025-6218 in WinRAR, and CVE-2025-62221 targeting Microsoft Windows. Notable critical disclosures include multiple Tenda product vulnerabilities (CVE-2025-15006, CVE-2025-15007, CVE-2025-15010) and an authentication bypass in Xiongmai devices (CVE-2025-65856). Current patch availability stands at 0%, requiring organizations to implement compensating controls while monitoring for vendor updates.
Immediate action: Prioritize review of actively exploited vulnerabilities affecting SonicWall SMA1000, Cisco products, Microsoft Windows, and WinRAR installations. With no patches currently available, implement network segmentation, restrict access to affected systems, and enable enhanced logging for indicators of compromise. Security teams should monitor vendor security advisories throughout the week for emergency patch releases.
SonicWall SMA1000 Missing Authorization Vulnerability - Active in CISA KEV catalog.
Cisco Multiple Products Improper Input Validation Vulnerability - Active in CISA KEV catalog.
OpenPLC ScadaBR Unrestricted Upload of File with Dangerous Type Vulnerability - Active in CISA KEV catalog.
WatchGuard Firebox Out of Bounds Write Vulnerability - Active in CISA KEV catalog.
D-Link Routers Buffer Overflow Vulnerability - Active in CISA KEV catalog.
Array Networks ArrayOS AG OS Command Injection Vulnerability - Active in CISA KEV catalog.
RARLAB WinRAR Path Traversal Vulnerability - Active in CISA KEV catalog.
Microsoft Windows Use After Free Vulnerability - Active in CISA KEV catalog.
OSGeo GeoServer Improper Restriction of XML External Entity Reference Vulnerability - Active in CISA KEV catalog.
Sierra Wireless AirLink ALEOS Unrestricted Upload of File with Dangerous Type Vulnerability - Active in CISA KEV catalog.
Google Chromium Out of Bounds Memory Access Vulnerability - Active in CISA KEV catalog.
Gladinet CentreStack and Triofox Hard Coded Cryptographic Vulnerability - Active in CISA KEV catalog.
Apple Multiple Products Use-After-Free WebKit Vulnerability - Active in CISA KEV catalog.
ASUS Live Update Embedded Malicious Code Vulnerability - Active in CISA KEV catalog.
Digiever DS-2105 Pro Missing Authorization Vulnerability - Active in CISA KEV catalog.
A weakness has been identified in Tenda WH450 1.0.0.18. Affected by this vulnerability is an unknown functionality of the file /goform/CheckTools of the component HTTP Request Handler. This manipulation of the argument ipaddress causes stack-based buffer overflow. The attack can be initiated remotely. The exploit has been made available to the public and could be exploited.
ProjectSend r1605 contains a remote code execution vulnerability that allows attackers to upload malicious files by manipulating file extensions. Attackers can upload shell scripts with disguised extensions through the upload.process.php endpoint to execute arbitrary commands on the server.
Enterprise Cloud Database developed by Ragic has a Hard-coded Cryptographic Key vulnerability, allowing unauthenticated remote attackers to exploit the fixed key to generate verification information and log into the system as any user.
SOUND4 IMPACT/FIRST/PULSE/Eco v2.x contains an unauthenticated OS command injection vulnerability that allows remote attackers to execute arbitrary shell commands through the 'password' parameter. Attackers can exploit the login.php and index.php scripts by injecting shell commands via the 'password' POST parameter to execute commands with web server privileges.
Screen SFT DAB 600/C Firmware 1.9.3 contains a session management vulnerability that allows attackers to bypass authentication controls by exploiting IP address session binding. Attackers can reuse the same IP address and issue unauthorized requests to the userManager API to remove user accounts without proper authentication.
A security vulnerability has been detected in Tenda WH450 1.0.0.18. Affected by this issue is some unknown functionality of the file /goform/L7Im of the component HTTP Request Handler. Such manipulation of the argument page leads to stack-based buffer overflow. The attack can be launched remotely. The exploit has been disclosed publicly and may be used.
A vulnerability has been found in Tenda WH450 1.0.0.18. This issue affects some unknown processing of the file /goform/SafeUrlFilter. The manipulation of the argument page leads to stack-based buffer overflow. Remote exploitation of the attack is possible. The exploit has been disclosed to the public and may be used.
Authentication bypass vulnerability in Xiongmai XM530 IP cameras on Firmware V5.00.R02.000807D8.10010.346624.S.ONVIF 21.06 allows unauthenticated remote attackers to access sensitive device information and live video streams. The ONVIF implementation fails to enforce authentication on 31 critical endpoints, enabling direct unauthorized video stream access.
ClipBucket 5.5.2 is affected by an improper access control issue where the product is shipped or deployed with hardcoded default administrative credentials. An unauthenticated remote attacker can log in to the administrative panel using these default credentials, resulting in full administrative control of the application.
Iframe injection vulnerability in airc.pt/solucoes-servicos.solucoes MyNET v.26.06 and before allows a remote attacker to execute arbitrary code via the src parameter.
net-snmp is a SNMP application library, tools and daemon. Prior to versions 5.9.5 and 5.10.pre2, a specially crafted packet to an net-snmp snmptrapd daemon can cause a buffer overflow and the daemon to crash. This issue has been patched in versions 5.9.5 and 5.10.pre2.
An arbitrary file upload vulnerability in Umbraco CMS v16.3.3 allows attackers to execute arbitrary code via uploading a crafted PDF file.
SOUND4 IMPACT/FIRST/PULSE/Eco v2.x contains an insecure direct object reference vulnerability that allows attackers to bypass authorization and access hidden system resources. Attackers can exploit the vulnerability by manipulating user-supplied input to execute privileged functionalities without proper authentication.
SOUND4 LinkAndShare Transmitter 1.1.2 contains a format string vulnerability that allows attackers to trigger memory stack overflows through maliciously crafted environment variables. Attackers can manipulate the username environment variable with format string payloads to potentially execute arbitrary code and crash the application.
An arbitrary file upload vulnerability in the Attachments module of Frappe Framework v15.89.0 allows attackers to execute arbitrary code via uploading a crafted XML file.
Enterprise Cloud Database developed by Ragic has a Arbitrary File Read vulnerability, allowing unauthenticated remote attackers to exploit Relative Path Traversal to download arbitrary system files
Insecure permissions in the /api/v1/agents API of GT Edge AI Platform before v2
Incorrect access control in the /api/v1/conversations/*/files API of GT Edge AI Platform before v2
Incorrect access control in the /api/v1/conversations/*/messages API of GT Edge AI Platform before v2
A Local File Inclusion (LFI) vulnerability exists in the Webmail Classic UI of Zimbra Collaboration (ZCS) 10
LSC Smart Connect Indoor IP Camera 1
WebTareas 2
MyBB 1
PhotoShow 3
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Centreon Infra Monitoring - Open-tickets (Notification rules configuration parameters, Open tickets modules) allows SQL Injection to user with elevated privileges
Cobian Backup Gravity 11
Wondershare MirrorGo 2
SOUND4 Server Service 4
Zillya Total Security 3
SOUND4 IMPACT/FIRST/PULSE/Eco version 2
WebTareas 2
Atom CMS 2
An issue was discovered in K7 Ultimate Security 17
youlai-boot V2
Hasura GraphQL 1
SOUND4 IMPACT/FIRST/PULSE/Eco v2
SOUND4 IMPACT/FIRST/PULSE/Eco v2
Screen SFT DAB 600/C firmware 1
Screen SFT DAB 600/C firmware 1
Screen SFT DAB 600/C Firmware 1
D-Link DSL-124 ME_1
An issue was discovered in Xiongmai XM530 IP cameras on firmware V5
Fedify is a TypeScript library for building federated server apps powered by ActivityPub
A vulnerability has been found in SeaCMS up to 13
A vulnerability was detected in Tenda WH450 1
A vulnerability was found in code-projects Simple Stock System 1
A vulnerability was determined in code-projects Refugee Food Management System 1
Unquoted Search Path or Element vulnerability in NetBT Consulting Services Inc
A security flaw has been discovered in itsourcecode Student Management System 1
Mattermost versions 11
youlai-boot V2